Connect securely.
Admin-approved access, with no passwords shared.
No incident required. Sentry Scan gives you a fresh look at the Microsoft 365 activity already in your environment.
Admin-approved access, with no passwords shared.
Look back across your available Microsoft 365 activity.
A PDF summary and Excel evidence report, once connection and data are confirmed.
New client, established environment, or simply curious? Sentry Scan connects historical sign-ins, email, files, and application activity to show what deserves a closer look.
Find signs of attacker activity that began before the current investigation.
Follow access, activity, and affected resources across evidence sources.
Examine persistence and the impact that may still need attention.
Any time you want a clearer picture. You might be onboarding a client, reviewing your own environment, or simply curious. You do not need to suspect a compromise to request a scan.
Sentry Scan reviews up to six months of available history. Source retention and logging coverage determine the activity that can be examined.
A PDF summary and Excel evidence report covering findings, the connected sequence, and recommended next steps. Expect results in 24–48 hours after connection and data availability are confirmed.
An authorised administrator approves the Microsoft 365 connection after reviewing the permissions. No passwords are shared with Sentry. Scan reviews activity metadata, not email contents. Requesting a scan does not connect a tenant or authorise remediation.
Sentry Scan focuses on historical assessment. The wider Sentry platform brings unified evidence, behavioural detection, automated remediation, and forensic investigation together.
You don’t need to suspect a compromise to take a closer look. Look back through up to six months of available activity. Get a PDF summary and Excel evidence report in 24–48 hours after connection.
Free assessment · No incident requiredRequest your free scan How Sentry Scan worksExample environment · Historical assessment